Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2025-14181

Опубликовано: 29 сент. 2026
Источник: msrc
CVSS3: 6.5
EPSS Низкий

Описание

Integer overflow to buffer overflow in soap HTTP parsing

EPSS

Процентиль: 25%
0.00341
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
9 дней назад

The SOAP HTTP client guards its response buffer growth with a check that relies on signed integer overflow, which is undefined behaviour and is not guaranteed to trigger. When the check is optimised away, a malicious SOAP server can make the client allocate a buffer far smaller than the data it then writes into it, producing a heap buffer overflow.

CVSS3: 6.5
redhat
9 дней назад

The SOAP HTTP client guards its response buffer growth with a check that relies on signed integer overflow, which is undefined behaviour and is not guaranteed to trigger. When the check is optimised away, a malicious SOAP server can make the client allocate a buffer far smaller than the data it then writes into it, producing a heap buffer overflow.

CVSS3: 6.5
nvd
9 дней назад

The SOAP HTTP client guards its response buffer growth with a check that relies on signed integer overflow, which is undefined behaviour and is not guaranteed to trigger. When the check is optimised away, a malicious SOAP server can make the client allocate a buffer far smaller than the data it then writes into it, producing a heap buffer overflow.

CVSS3: 6.5
debian
9 дней назад

The SOAP HTTP client guards its response buffer growth with a check th ...

CVSS3: 6.5
github
10 дней назад

Integer overflow to buffer overflow in soap HTTP parsing

EPSS

Процентиль: 25%
0.00341
Низкий

6.5 Medium

CVSS3